CVE Vulnerabilities

CVE-2024-54016

Improper Handling of Highly Compressed Data (Data Amplification)

Published: Mar 20, 2025 | Modified: Mar 20, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in Apache Seata (incubating).

This issue affects Apache Seata (incubating): through <=2.2.0.

Users are recommended to upgrade to version 2.3.0, which fixes the issue.

Weakness

The product does not handle or incorrectly handles a compressed input with a very high compression ratio that produces a large output.

References